MALICIOUS — HIGH
hyperliquid[.]review
The domain hyperliquid.review is a confirmed phishing site engaged in brand impersonation targeting Arbitrum, a prominent cryptocurrency platform.
- VirusTotal
- 3/95
- Blocklists
- No stored match
- उपलब्धता
- सामग्री अनुपलब्ध · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
hyperliquid.review — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Arbitrum; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 3/95 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 65/100. रजिस्ट्रार: NameCheap.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
The domain hyperliquid.review is a confirmed phishing site engaged in brand impersonation targeting Arbitrum, a prominent cryptocurrency platform. It posed as a guide for 'zero-gas perpetual trading' under the false pretense of Hyperliquid, a scam type designed to deceive users into disclosing sensitive information or interacting with malicious smart contracts. As of the latest verification, hyperliquid.review has been taken offline, though it previously operated as an elevated-risk threat with no associated drainer kit detected.
Technical analysis reveals that hyperliquid.review was flagged by 3 of 95 security vendors on VirusTotal, including Forcepoint ThreatSeeker, Gridinsoft, and SOCRadar, while Gridinsoft assigned it a trust score of 0/100. The domain was registered through NameCheap, Inc. on November 25, 2025, and resolved to the IP address 162.0.217.157, hosted in the Netherlands under AS22612 (Namecheap, Inc.). It appeared on one security blocklist, PhishDestroy, and lacked an SSL certificate. The observed page title was 'Hyperliquid Review | The #1 Guide to Zero-Gas Perpetual Trading,' and its nameservers were dns1.namecheaphosting.com and dns2.namecheaphosting.com.
Users who interacted with hyperliquid.review should immediately revoke any token approvals granted to unknown contracts and consider transferring funds to a new wallet to mitigate potential risks. If credentials were entered, change passwords for all associated accounts and enable two-factor authentication. Report the domain to platforms such as Google Safe Browsing, PhishTank, or the impersonated brand’s official security channels to aid in takedown efforts and prevent further victimization.
डेटा कवरेज12 recorded checks
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।